Hello everyone,
In our environment we do have BYOD and Domain devices.
For the BYOD the connection of Zero Trust Fabric Agent with EMS is perfectly fine.
But we do have problems with the domain devices. Is there a way to tell the Zero Trust Fabric Agent to bypass dhe proxy that the endpoints have on their regedit ?
#FortiClient EMS #ZeroTrustFabricAgent
Hello
If I understand your request you want the domain devices not use the ZTNA proxy. In that you just need to create different policies, on for domain devices and one for others.
Then the policy for the domain devices should have ZTNA profile disabled.
My request is not related to ZTNA but to the FortiClient.exe it self running on users endpoint. I managed to solve this using as a workaround the bypass proxy on the regedit by telling to bypass (proxy override) the following: C:\Program Files\Fortinet\FortiClient\FortiTray.exe
You can use ZTNA IP MAC based for your internal domain pcs.
This mode does not require the use of the access proxy, and only uses security posture tags for access control.
Hi, what i mean is the proxy on the desktop level. The machine requires proxy to connect to internet. When i install the Forticlient agent this one is forced through regedit to connect via proxy in order to go to internet. But when the machine is not in the LAN, logically cannot reach internet since it requires proxy. Is there a way to bypass proxy for forticlient.exe agent ?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1737 | |
1107 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.